·À·¶sql×¢Èë¹¥»÷£¨ÉÏ£©
ͬ²½Ò»ÏÂÎÒbaiduµÄblog£ºhttp://hi.baidu.com/ncheng/blog/item/bc65f82a1a6a7c335343c11c.html
Sql×¢ÈëÊÇÒ»ÖÖÈëÃż«µÍÆÆ»µ¼«´óµÄ¹¥»÷·½Ê½¡£Èç¹ûsqlÊÇÓÃ×Ö·û´®Æ´½Ó³öÀ´µÄ»°£¬ÄÇô¿Ï¶¨»á±»×¢Èë¹¥»÷£¬Ç°¶Îʱ¼ä»¹´«³öÁËij¹úÍâ´óÐÍÉç½»ÍøÕ¾±»SQL×¢Èë¹¥»÷¡£
Sql×¢Èë¹¥»÷µÄ·½Ê½£¬À´ÕâÀï¿´µÄͬ־ÃÇÓ¦¸ÃºÜÇå³þÁË£¬¾ÍÊÇÔÚÆ´½Ó×Ö·û´®µÄʱºò£¬Èç¹ûÊäÈëµÄÊÇ´øµ¥ÒýºÅµÄ£¬ÄÇôÊäÈëlaf' or 1='1' --ÕâÑù¾Í»áÌÓ±ÜÌõ¼þ¼ì²é£¬ºóÃæÒªÊÇÔÙ¸úһЩshutdown£¬deleteÖ®ÀàµÄÌõ¼þ£¬ÄÇôËðʧ»ù±¾ËãÊÇ»ÙÃðÐÔµÄÁË¡£Ç°¼¸Ì쵥λ¿ª·¢µÄ¹ý³ÌÖÐÎÒ·¢ÏÖ¼¸ºõ´ó¼Ò¶¼²»ÖØÊÓ°²È«£¬Ò»¸öд´úÂëµÄÈ˲»×¢ÒⰲȫֻעÒâʵÏÖÄÇôд³öÀ´µÄ´úÂëÔÚ¹¥»÷ÕßÑÛǰ»ù±¾¾ÍÊÇÒ»¸öûÓд©Ò·þµÄÃÀÅ®¡£
ÏÂÃæÊÇÎÒÒ»¸ö¿ª·¢ÈËÔ±µÄһЩ¾Ñ飬Ö÷ÒªÓÃÀ´·ÀÖ¹sql×¢Èë¡£
1¡¢Ê×ÏȶÔÔËÐÐsqlµÄÓû§¸³Óè×îСȨÏÞ£¬Õâ¸öÀíÂÛÒ²Êǰ²È«ÁìÓòµÄ×îÐ¡ÌØÈ¨ÀíÂÛ£¬ÔËÐÐÒ»¸ö³ÌÐòÒ»¶¨ÒªÓÃ×îÐ¡ÌØÈ¨ÔËÐУ¬ËùÒÔ²»Òª¸øÓû§·þÎñDBAµÄȨÏÞ£¬ÏÞÖÆÒªÈ¨ÏÞÖ®ºó¿ÉÒÔ·ÀֹһЩ»ÙÃðÐԵĹ¥»÷£¬¼´Ê¹¹¥ÈëÁËÒ²²»»áshutdownÐ޸ıíÖ®ÀàµÄ¡£
2¡¢Ò»¶¨²»ÒªÊ¹ÓÃ×Ö·û´®Æ´½ÓµÄ·½Ê½¹¹Ôìsql£¬±ØÐëʹÓòÎÊý»¯sql£¬´æ´¢¹ý³Ì¿ÉÒÔ¿´×÷ÊDzÎÊýsql£¬¼òµ¥µÄ¾ÍÖ±½Ó¹¹Ôì²ÎÊý»¯sql£¬¸´ÔӵľÍд´æ´¢¹ý³Ì£¬²»¹ý´æ´¢¹ý³ÌÖÐÒ»¶¨²»ÒªÓÃ×Ö·û´®£¬ÎÒ¿´ÓÐÈËÔÚ´æ´¢¹ý³ÌÓÃ×Ö·û´®£¬ÕâÑù»¹ÊDz»ÄܱÜÃâ±»¹¥»÷£¬²¢ÇÒÔÚµ÷ÊÔµÄʱºò·Ç³£Âé·³¡£
3¡¢ÑϰÑÊäÈë¹Ø£¬ÏµÍ³¿Ï¶¨ÊÇÓÃÀ´½»»¥µÄ£¬ËùÓÐÓû§ÊäÈëµÄÕâÒ»¹ØÒ»¶¨Òª°ÑºÃ£¬¿ÉÒÔÀûÓø÷ÖÖ·½Ê½À´¼ìÑéÓû§µÄÊäÈ룬ÈÃÊäÈë¶¼ÊǺϷ¨µÄ£»¿ÉÒÔÉèÃô¸Ð×Ö·û²»ÈÃÓû§ÊäÈ룬Õâ¸öËäÈ»²»ÊǺÜÓѺ㬲»¹ý¶ÔÓ밲ȫÓб£Ö¤¡£ÔÚÑéÖ¤µÄÊÇ¿ÉÒÔÓÃÕýÔò±í´ïʽ»òÕß³ÌÐòÑéÖ¤£¬²»¹ÜÓÃʲô·½Ê½Ö»Òª°ÑÃô¸Ð×Ö·ûºÍ¿ÉÒÉ×Ö·û¾ÜÖ®ÃÅÍâÄÇô¾ÍÎÞ·¨¹¥»÷ÁË£¬²»¹ýÏÞÖÆÊäÈ뻹ÊÇÓÐȱÏÝ£¬ÔÚ°²È«ÀíÂÛ·½Ã棬ֻÄÜÈ·¶¨ºÏ·¨£¬²»ÄÜÈ·¶¨²»ºÏ·¨£¬±ÈÈçÄãÔÚ½çÃæÏÞÖÆÁ˺Ϸ¨µÄ£¬ÄÇôʣÓàµÄ¶¼ÊDz»ºÏ·¨µÄ£¬ÕâʱºòÊäÈëµÄ¿Ï¶¨È«²¿ÊǺϷ¨µÄ£¬Èç¹ûÄãÏÞÖÆµÄÊÇ·Ç·¨µÄ£¬¿ÉÊÇÄãÄÜÈ·±£ÄãÏÞÖÆµÄÈ«ÊÇ·Ç·¨µÄ£¿Èç¹ûijһÌì·¢ÏÖÒ»¸ö·Ç·¨µÄ²»ÔÙÄãÏÞÖÆÖ®ÄÚÄÇôÄã¾Í»á±»¹¥»÷¡£
4¡¢×öºÃ×Ô¼ºµÄ¼ìÑéºÍ²âÊÔ¹¤×÷£¬×Ô¼º¿ÉÒÔ½øÐÐsql×¢Èë¹¥»÷£¬ÀûÓù¤¾ß¼ìÑé¡£
5¡¢Ò»¶¨ÒªÑø³É¾ßÓа²È«ÒâʶµÄ³ÌÐòÔ±£¬Ê±¿ÌÏë×Ű²È«¡£
Õ⼸ÌõÖ®ÖÐ×îÖØÒªµÄÊÇ1ºÍ2£¬È¨ÏÞÏÞÖÆÒ»¶¨Òª×¢Ò⣬²»È»»áËÀµÄºÜ²ÒµÄ£¬µÚ¶þ¾ÍÊdzÌÐòÔ±µÄϰ¹ßÁË£¬Ò»¶¨ÒªÓòÎÊý»¯sqlºÍÊý¾Ý¿â½»»¥¡£
ʱ¼äÌ«ÍíÁË£¬Ã÷Ì컹ҪÉϰàÄØ£¬¾Íµ½ÕâÀï°É£¬ÏÂһƪÎÒ¾Íͨ¹ýʵÀýÀ´ËµËµ³ÌÐòÔ±×î¹ØÐĵ
Ïà¹ØÎĵµ£º
asp.net(C#)ʵÏÖSQL2000Êý¾Ý¿â±¸·ÝºÍ»¹Ô
using System;
using System.Data;
using System.Configuration;
using System.Collections;
using System.Web;
using System.Web.Security;
using System.Web.UI;
using System.Web.UI.WebControls;
using System.Web.UI.WebControls.WebParts;
using System.Web.UI.Htm ......
ÔÚ¹¤×÷ÖÐÓöµ½Ò»¸öÎÊÌâ,ÊÇÐèÒªsqlµÝ¹é²éѯµÄ.²»¶®,ÓÚÊǵ½csdnÉÏÈ¥ÎÊ,ÄÇÀïµÄЧÂÊÕæÊǷdz£¸ß,ÎÒÒÔǰҲûÔÚÉÏÃæÎʹýÎÊÌâ.
ÎÊÌâÃèÊö:
ÎÒÓÐÒ»¸ö±í½á¹¹ÈçÏÂ:
id upperid
1 2
3 2
4 1
5 3
¾ßÌå²ã´Î²»ÖªµÀ,ÎÒÏëÓõݹésqlÓ ......
SQL³£ÓÃÃüÁîʹÓ÷½·¨£º
(1) Êý¾Ý¼Ç¼ɸѡ£º
sql="select * from Êý¾Ý±í where ×Ö¶ÎÃû=×Ö¶ÎÖµ order by ×Ö¶ÎÃû [desc]"
sq ......
SQL Server Êý¾Ý¿â¹ÊÕÏÐÞ¸´¶¥¼¶¼¼ÇÉÖ®Ò»
2010-04-26 10:37:52 À´Ô´:TechTargetÖйú ÎÒÒªÊÕ²Ø
SQL Server 2005 ºÍ 2008 Óм¸¸ö¹ØÓڸ߿ÉÓÃÐÔµÄÑ¡ÏÈçÈÕÖ¾´«Êä¡¢¸±±¾ºÍÊý¾Ý¿â¾µÏñ¡£ËùÓÐÕâЩ¼¼Êõ¶¼Äܹ»×÷Ϊά»¤Ò»¸ö±¸Ó÷þÎñÆ÷µÄÊֶΣ¬Í¬Ê±Õâ¸öÊý¾Ý¿â¿ÉÒÔÔÚÄãÔÏȵÄÖ÷Êý¾Ý¿â³öÎÊÌâʱÉÏÏß²¢×÷ΪеÄÖ÷·þÎñÆ÷¡£È»¶ø£¬Äã± ......